Advisory [CVE-2026-32998 +5] List of Security Fixes and Improvements in Veeam Service Provider Console
This security Veeam advisory covers CVE-2026-32998 and CVE-2026-58067 and 4 more CVEs affecting Service Provider Console.
Android app · Google Play
Monitor future Veeam CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Summary
List of Security Fixes and Improvements in Veeam Service Provider Console
KB ID: 4856
Product:
Published: 2026-05-27
Last Modified:
Purpose
9.3.0.35057
- @babel/runtime upgraded to version 7.29.7
- axios upgraded to version 1.16.1
- dompurify upgraded to version 3.4.11
- follow-redirects upgraded to version 1.16.0
- form-data upgraded to version 4.0.6
- happy-dom upgraded to version 20.9.0
- i18next-http-backend upgraded to version 4.0.0
- linkify-it upgraded to version 5.0.2
- lodash upgraded to version 4.18.1
- MailKit upgraded to version 4.16.0
- MimeKit upgraded to version 4.16.0
- OpenTelemetry. Api upgraded to version 1.16.0
- picomatch upgraded to version 4.0.4
- SkiaSharp upgraded to version 3.119.4
- System. Security. Cryptography. Xml upgraded to version 10.0.10
- uuid upgraded to version 14.0.0
- vite upgraded to version 8.0.15
- yaml upgraded to version 2.9.0
9.2.1.33875
- AutoMapper was replaced with MagicMapper 14.0.1.
- System. Text. RegularExpressions upgraded to version 4.3.1
More Information
As we're establishing this new process, we appreciate any feedback on the content or format of this KB article. Please let us know in the corresponding topic on the Veeam Community Forums.
If your feedback is too sensitive to be shared publicly, please submit it by opening a support case. We highly appreciate your collaboration!
Affected versions
No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.
Official advisory · medium-confidence parse· fetched 8 days ago·verify at source
Fixed versions
No fixed release is recorded yet. That does not prove no patch exists — confirm against the vendor advisory.
Official advisory · medium-confidence parse· fetched 8 days ago·verify at source
Mitigation checklist
- List of Security Fixes and Improvements in Veeam Service Provider Console KB ID: 4856 Product: Veeam Service Provider Console | 9.2 | 9.3 Published: 2026-05-27 Last Modified: 2026-08-04 Purpose This article describes all security-related fixes and improvements introduced in each release or update of Veeam Service Provider Console.
- This article aims to provide our customers' security and compliance teams with detailed information on security improvements between releases to help them make an informed decision on whether it is critical to upgrade from their current Veeam Service Provider Console version to a later one.
Official advisory · medium-confidence parse· fetched 8 days ago·verify at source
Discussion(0)
No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.
Sign in to join the discussion.